Huerfanos 1160, Oficina 1208, Santiago

contacto@newsystem.cl

+56 443229010

Search

Summary

An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiOS and FortiProxy SSLVPN may allow an authenticated attacker to gain access to another user’s bookmark via URL manipulation.

VersionAffectedSolution
FortiOS 7.47.4.0 through 7.4.1Upgrade to 7.4.2 or above
FortiOS 7.27.2.0 through 7.2.6Upgrade to 7.2.7 or above
FortiOS 7.07.0.1 through 7.0.13Upgrade to 7.0.14 or above
FortiOS 6.46.4.7 through 6.4.14Upgrade to 6.4.15 or above
FortiProxy 7.47.4.0 through 7.4.2Upgrade to 7.4.3 or above
FortiProxy 7.27.2.0 through 7.2.8Upgrade to 7.2.9 or above
FortiProxy 7.07.0.0 through 7.0.14Upgrade to 7.0.15 or above
Follow the recommended upgrade path using our tool at: https://docs.fortinet.com/upgrade-tool

Workaround:
Disable SSL VPN web mode.

Acknowledgement

Internally discovered and reported by Kai Ni from Burnaby InfoSec team.

Deja una respuesta